Privacy · October 6, 2026
Apple warns of AI agents risking Mac user privacy
Apple is preparing to introduce new protective measures to the feature "Full Disk Access" in macOS, in an effort to mitigate the risks posed by AI agents that request extensive permissions to access user data.
The company cautioned that some AI tools could endanger users when granted this level of access, as they can reach files, emails, conversations, and browsing history, sometimes without users fully realizing the nature of the data these applications can access.
Apple explained that some developers of AI agents misuse the "Full Disk Access" permission in ways that may compromise user data, noting that communication applications could also affect the privacy of individuals the user communicates with.
The "Full Disk Access" permission grants applications broad capabilities to access stored data on a Mac device. Some AI agent applications, such as OpenClaw, Dots, and Muse, require this permission to perform more complex tasks, such as reading files and messages and handling various data on the device.
These capabilities come with significant privacy and security risks, prompting some users to run AI agents on separate devices instead of their primary computers, to reduce the amount of data these tools can access.
Concerns regarding these permissions resurfaced with the rise of the AI agent Muse from Meta, as some users reported unexpected operations related to their data. Apple does not specifically mention Muse or Meta in its warning.
In one instance, a technology writer reported that the Muse application on Mac was able to access his messages while he believed he had denied the application that permission. Meta responded that message synchronization implies user consent for granting permission.
Apple intends to implement clearer steps before allowing applications to obtain "Full Disk Access," requiring explicit user action to grant this level of access.
The company stated that this step is increasingly important as AI agents grow in capability and autonomy, as the risks associated with granting them broad access to device data could expand with the evolution of their capabilities.
Apple has not yet disclosed when the new changes will be rolled out or the details of the controls it will add to macOS, but it confirmed that the goal is to help users understand the scope of permissions they grant to applications and make clearer decisions regarding their data and privacy.